Описание
Solar FTP Server fails to properly handle format strings passed to the USER command. When a specially crafted string containing format specifiers is sent, the server crashes due to a read access violation in the __output_1() function of sfsservice.exe. This results in a denial of service (DoS) condition.
Ссылки
EPSS
Процентиль: 98%
0.48844
Средний
Дефекты
CWE-134
Связанные уязвимости
github
6 месяцев назад
Solar FTP Server fails to properly handle format strings passed to the USER command. When a specially crafted string containing format specifiers is sent, the server crashes due to a read access violation in the __output_1() function of sfsservice.exe. This results in a denial of service (DoS) condition.
EPSS
Процентиль: 98%
0.48844
Средний
Дефекты
CWE-134